Operational Framework Model v1.2
Code Hush collects specific data elements necessary to maintain secure managed platform operations, register administrative accounts, and log billing records. This data is limited to company identifiers, partner emails, owner names, billing details, IP logs, and system actions.
Our dashboard systems natively utilize secure, HttpOnly browser session cookies to maintain authorization tokens across endpoints. We do not engage in third-party marketing tracking. Cookies are limited to critical system telemetry and user session validation requirements.
Any media uploads, custom product catalogues, and legal agreements are stored securely inside isolated storage buckets (AWS S3 or Cloudflare R2). We utilize AES 256-bit encryption for all stored files. Administrative and action log history records are held indefinitely for audit protection.
Code Hush does not rent, broker, or sell Client databases or customer catalog logs to any marketing entities. Data is only shared when required by law or to standard platform providers (e.g. databases, transactional email SMTP senders) necessary to provide managed hosting services.
Our systems deploy standard industry best practices to safeguard Client data logs: database firewalls, isolated tenant schema structures, strict JWT access rotators, and regular system audits.